Sample viewer

vx.netlux.org/Virus.DOS.YZ.1434

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:29:05.494434108Z 239 PC: 1758f | UNKNOWN!
2018-12-17T22:29:05.496126462Z 53 PC: 175da | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:29:05.497235219Z 37 PC: 175ec | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:29:05.498889636Z 99 PC: 13726 | Get DBCS lead byte table pointer
2018-12-17T22:29:05.500676797Z 68 PC: 13740 | I/O control for devices (Set for = '')
2018-12-17T22:29:05.502170773Z 68 PC: 1374b | I/O control for devices (Set for = '')
2018-12-17T22:29:05.50389611Z 68 PC: 13756 | I/O control for devices (Set for = '')
2018-12-17T22:29:05.505903817Z 68 PC: 1375e | I/O control for devices (Set for = '��b���g�t�S3����[r�2��W�<t�<u�6�u����>��>W')
2018-12-17T22:29:05.507494182Z 48 PC: 13763 | Get DOS version
2018-12-17T22:29:05.508718055Z 37 PC: 1666f | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:29:05.510672335Z 53 PC: 16678 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:05.511944356Z 37 PC: 1668f | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:05.513102322Z 25 PC: 165ed | Get default drive
2018-12-17T22:29:05.514429101Z 71 PC: 165f7 | Get current directory
2018-12-17T22:29:05.518419028Z 64 PC: 139e5 | Write file or device (Write 30 bytes on handle 2)
2018-12-17T22:29:05.524012995Z 64 PC: 139e5 | Write file or device (Write 9 bytes on handle 1)
2018-12-17T22:29:05.527093976Z 64 PC: 139e5 | Write file or device (Write 17 bytes on handle 1)
2018-12-17T22:29:05.533886383Z 76 PC: 147f8 | Terminate with return code (Return code = '4')